CVE-2026-15366CWE-653

CVE-2026-15366

published August 26, 2026

CVSS
2.4
EPSS
0%
Percentile
10.4
In the wild
Unconfirmed
What it is

A control logic defect in a specific built-in webpage of Kids Mode allows users to view local gallery photos directly within the page

The record
Technical detail
CVSS
2.4 · NONE
CVSS v4.0
2.4 · CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:L/SI:N/SA:N
EPSS
0.00204 · 10.4th percentile
Weakness
CWE-653 · Improper Isolation or Compartmentalization
Published
2026-08-26T11:16Z
References (1)
EPSS history
Timeline
  • 27 AUG 06:19Z
    EPSS moved — → 0%
    epss
  • 26 AUG 06:46Z
    A control logic defect in a specific built-in webpage of Kids Mode allows users to view local gallery photos directly within the page
    cvelistv5